CrowdStrike Falcon and Microsoft Defender for Business compete in the endpoint security solutions market. CrowdStrike Falcon appears to have the upper hand regarding EDR capabilities and system performance impact.
Features: CrowdStrike Falcon offers exceptional EDR capabilities, enabling remote connectivity for manual analysis and real-time threat detection. It minimizes system performance impact and boasts AI-driven security features. Microsoft Defender for Business is integrated with Microsoft's ecosystem, offering seamless inclusion in Microsoft 365 packages and robust integration capabilities.
Room for Improvement: CrowdStrike Falcon could improve its dashboard functionalities, reporting, and integration with other technologies, along with support for legacy systems and DLP feature development. A reduction in false positives and smoother third-party integrations is also desired. Microsoft Defender for Business needs enhanced threat detection accuracy, better pricing for small businesses, and improved remote action capabilities. Users find the AI causes high false positives, and the support process requires streamlining.
Ease of Deployment and Customer Service: CrowdStrike Falcon offers ease of deployment across varied environments with a proactive support system, although some users notice variability in support quality. Microsoft Defender for Business benefits from integration into Microsoft’s cloud ecosystem, providing ease of deployment for organizations already using Microsoft services. The support is generally good, but improvements in response speed and hands-on engagement during critical situations are desired.
Pricing and ROI: CrowdStrike Falcon is known for higher pricing due to comprehensive features, requiring budget consideration, particularly for small businesses. Its cloud-based services deliver excellent ROI by reducing downtime and threat management workload. Microsoft Defender for Business, often included in Microsoft 365 packages, offers cost-effective solutions for enterprises within the Microsoft ecosystem, though standalone pricing can be high for smaller organizations. Both solutions deliver security enhancements and reduced operational burdens, with financial justification dependent on business scale and infrastructure.
CrowdStrike Falcon saves time and offers good value for money, especially for enterprise companies, because it can stop breaches.
It's very easy to deploy without many IT admins, saving time.
Using Microsoft Defender for Business results in cost reductions as it consolidates various features under one product, saving around 20% to 30% of the budget.
The value I see in Microsoft Defender for Business is in its ability to track and respond to application usage and security threats through its CASB and automation features, which are cost-beneficial.
On a scale of one to ten, I would rate the technical support as a 10 because they resolve many issues for us.
The CrowdStrike team is very efficient; I would rate them ten out of ten.
They could improve by initiating calls for high-priority cases instead of just opening tickets.
It is rated ten out of ten for its quality and assistance.
The onboarding support is exceptional, ensuring seamless integration and implementation.
Faster support is needed for endpoint security solutions.
It has adequate coverage and is easy to deploy.
In terms of scalability, I find CrowdStrike to be stable, and I have not encountered any limitations with it.
There's no scalability limitation from CrowdStrike itself, as it just requires agent deployment.
The cloud-based nature of the solution ensures high scalability.
The scalability of Microsoft Defender for Business is rated as ten, indicating it is very scalable.
In terms of scalability, I would rate Microsoft Defender for Business a ten.
I have never seen instability in the CrowdStrike tool.
We are following N-1 versions across our environment, which is stable.
The biggest issue occurred when every computer worldwide experienced a blue screen.
No customer complaints about its functionality or reliability.
Although it generally works, there are occasional issues and errors that sometimes require a complete system format to rectify.
I would rate the stability of Microsoft Defender for Business with a three out of ten, where one is very bad.
Simplifying the querying process, such as using double quote queries or directly obtaining logs based on IP addresses or usernames, would be beneficial.
Another concern is CrowdStrike's GUI. It changes annually, making it hard to work and find options.
Threat prevention should be their first priority.
Microsoft should provide batch management solutions with the application, integrating pass management with roles.
Features related to Advanced Persistent Threat detection vectors and cyber kill chain integrations are not available out-of-the-box.
There can be improvements in the user interface to make it more intuitive.
It is expensive compared to SentinelOne, but as the market leader, it is worth it.
The licensing cost and setup costs are affordable.
The solution is a bit expensive.
Single-year pricing remains good.
The pricing is quite affordable at the enterprise level with no extra expenses noted.
Although the cost can be slightly higher, it expedites deployment, which is beneficial, especially for startups.
I can investigate by accessing the customer's host based on the RTR environment and utilize host search to know details for the past seven days, including logins, processes, file installations, malicious processes, and network connections.
The real-time analytics aspect of CrowdStrike performs well because we get all logs in real-time, with no delay, allowing us to take action immediately.
Being an EDR solution, it helps us identify attacks in real-time.
The threat detection capabilities are robust, with a dedicated research team and a continuously updated threat feed.
Its vulnerability management is regarded as one of the best in the industry.
The most effective features of Microsoft Defender for Business include its threat detection and response capabilities in managing vulnerabilities and ransomware attacks.
Product | Market Share (%) |
---|---|
CrowdStrike Falcon | 7.9% |
Microsoft Defender for Business | 2.1% |
Other | 90.0% |
Company Size | Count |
---|---|
Small Business | 46 |
Midsize Enterprise | 34 |
Large Enterprise | 61 |
Company Size | Count |
---|---|
Small Business | 15 |
Midsize Enterprise | 2 |
Large Enterprise | 3 |
CrowdStrike Falcon offers comprehensive endpoint protection with real-time threat detection, AI-driven capabilities, and seamless integration with other platforms. Its cloud-native design provides robust security across diverse environments, making it a reliable choice for modern cybersecurity needs.
CrowdStrike Falcon is heralded for features like robust endpoint visibility, threat detection, and AI-driven capabilities. Users value its efficient real-time monitoring, which maintains low impact on performance while offering seamless integration with platforms. The lightweight design, coupled with comprehensive dashboards and automated threat responses, enhances security operations while reducing resource strain. CrowdStrike's cloud-native architecture ensures flexible, always-on protection, making it adaptable to a wide range of environments. However, improvements can be made in log management, compatibility with diverse operating systems, and integration with third-party technologies. Users also seek more robust reporting features, fewer false positives, and better support for legacy systems. Enhanced policy application, AI capabilities, and extended on-demand scanning are desired, while pricing and technical support responsiveness are concerns.
What are CrowdStrike Falcon's key features?CrowdStrike Falcon is implemented widely in industries relying on robust endpoint protection for monitoring, securing endpoints, forensic analysis, and malware detection. Its cloud-based AI capabilities ensure comprehensive security across devices, making it a preferred choice for networks, servers, and workstations globally. The efficient management of security threats and compliance with regulations is achieved with minimal resource consumption.
Microsoft Defender for Business is a new endpoint security solution that was designed especially for the small and medium-sized business (up to 300 employees). With this endpoint security solution, your company's devices are better protected from ransomware, malware, phishing, and other threats.
We monitor all Endpoint Protection Platform (EPP) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.